[Oct 18, 2023] Prepare For The PAM-CDE-RECERT Question Papers In Advance
PAM-CDE-RECERT PDF Dumps Real 2023 Recently Updated Questions
NEW QUESTION # 108
A customer is deploying PVWAs in the Amazon Web Services Public Cloud. Which load balancing option does CyberArk recommend?
- A. Network Load Balancer
- B. HTTPS load balancer
- C. Classic Load Balancer
- D. Public standard load balancer
Answer: C
NEW QUESTION # 109
What is the name of the Platform parameters that controls how long a password will stay valid when One Time Passwords are enabled via the Master Policy?
- A. Interval
- B. Immediate Interval
- C. Timeout
- D. Min Validity Period
Answer: D
Explanation:
Min Validity Period -The number of minutes to wait from the last retrieval of the password until it is replaced. This gives the user a minimum period to be able to use the password before it is replaced. Use -1 to ignore this property. This parameter is also used to release exclusive accounts automatically Interval -" The number of minutes that the Central Policy Manager waits between running periodic searches for the platform. Note: It is recommended to leave the default value of 1440. If a change/verify policy has been configured, the Central Policy Manager will automatically align the periodic searches with the start of the defined timeframes."
NEW QUESTION # 110
Accounts Discovery allows secure connections to domain controllers.
- A. TRUE
- B. FALSE
Answer: B
NEW QUESTION # 111
Which report shows the accounts that are accessible to each user?
- A. Applications Inventory report
- B. Privileged Accounts Compliance Status report
- C. Entitlement report
- D. Activity report
Answer: C
NEW QUESTION # 112
Match the log file name with the CyberArk Component that generates the log.
Answer:
Explanation:
NEW QUESTION # 113
Which one the following reports is NOT generated by using the PVWA?
- A. Sales List
- B. Accounts Inventory
- C. Convince Status
- D. Application Inventory
Answer: A
NEW QUESTION # 114
A user is receiving the error message "ITATS006E Station is suspended for User jsmith" when attempting to sign into the Password Vault Web Access (PVWA).
Which utility would a Vault administrator use to correct this problem?
- A. cavaultmanager.exe
- B. PrivateArk
- C. PVWA
- D. createcredfile.exe
Answer: B
NEW QUESTION # 115
The Accounts Feed contains:
- A. All users added to CyberArk in the last 30 days
- B. All accounts added to the vault in the last 30 days
- C. Accounts that were discovered by CyberArk in the last 30 days
- D. Accounts that were discovered by CyberArk that have not yet been onboarded
Answer: C
NEW QUESTION # 116
You are installing HTML5 gateway on a Linux host using the RPM provided. After installing the Tomcat webapp, what is the next step in the installation process?
- A. Secure the webapp and JWT validation endpoint
- B. Deploy the HTML5 service (guacd)
- C. Configure ASLR
- D. Secure the connection between the guacd and the webapp
Answer: D
NEW QUESTION # 117
Match each key to its recommended storage location.
Answer:
Explanation:
NEW QUESTION # 118
When a DR Vault Server becomes an active vault, it will automatically revert back to DR mode once the Primary Vault comes back online.
- A. False, the Vault administrator must manually set the DR Vault to DR mode by setting "FailoverMode=no" in the dbparm.ini file.
- B. True, if the AllowFailback setting is set to "yes" in the padr.ini file.
- C. False, the Vault administrator must manually set the DR Vault to DR mode by setting "FailoverMode=no" in the padr.ini file.
- D. True, this is the default behavior.
Answer: D
NEW QUESTION # 119
Which file is used to integrate the Vault with the RADIUS server?
- A. ENEConf.ini
- B. dbparm.ini
- C. radius.ini
- D. PARagent.ini
Answer: B
NEW QUESTION # 120
What is a requirement for setting fault tolerance for PSMs?
- A. use a backup solution
- B. CPM must be in all data centers
- C. Install the Vault in an HA Cluster
- D. Use a load balancer
Answer: D
NEW QUESTION # 121
SAFE Authorizations may be granted to____________.
Select all that apply.
- A. Vault Users
- B. LDAP Users
- C. LDAP Groups
- D. Vault Group
Answer: A,B,C,D
NEW QUESTION # 122
In the screenshot displayed, you just configured the usage in CyberArk and want to update its password.
What is the least intrusive way to accomplish this?
- A. Use the "change" button on the parent account's details page.
- B. Use the "sync" button on the usage's details page.
- C. Use the "reconcile" button on the parent account's details page.
- D. Use the "change" button on the usage's details page.
Answer: A
NEW QUESTION # 123
Which combination of Safe member permissions will allow end users to log in to a remote machine transparently but NOT show or copy the password?
- A. List Accounts, Retrieve Accounts
- B. Use Accounts, Retrieve Accounts, List Accounts
- C. Use Accounts
- D. Use Accounts, List Accounts
Answer: A
NEW QUESTION # 124
PSM for Windows (previously known as RDP Proxy) supports connections to the which of the following target systems?
- A. Oracle
- B. Windows
- C. Unix
- D. All of the above
Answer: B
NEW QUESTION # 125
Which is the purpose of a linked account?
- A. To connect the CPM to a target system.
- B. To ensure a particular set of accounts all change at the same time.
- C. To allow the use of additional passwords within a password management process.
- D. To ensure that a particular collection of accounts all have the same password.
Answer: B
NEW QUESTION # 126
HA, DR, Replicate are mutually exclusive and cannot be used in the same environment.
- A. False
- B. True
Answer: A
NEW QUESTION # 127
You received a notification from one of your CyberArk auditors that they are missing Vault level audit permissions. You confirmed that all auditors are missing the Audit Users Vault permission.
Where do you update this permission for all auditors?
- A. Private Ark Client > Tools > Administrative Tools > Users and Groups > Auditors > Authorizations tab
- B. PVWA User Provisioning > LDAP integration > Vault Auditors Mapping > Vault Authorizations
- C. PVWA> Administration > Configuration Options > LDAP integration > Vault Auditors Mapping > Vault Authorizations
- D. Private Ark Client > Tools > Administrative Tools > Directory Mapping > Vault Authorizations
Answer: A
NEW QUESTION # 128
What are the basic network requirements to deploy a CPM server?
- A. Port 1858 only
- B. Port 1858 to Vault and port 443 to PVWA
- C. All ports to the vault
- D. Port UDP/1858 to vault and all required ports to the targets and port 389 to the PSM.
Answer: B
NEW QUESTION # 129
It is possible to restrict the time of day, or day of week that a [b]reconcile[/b] process can occur
- A. FALS
- B. TRUE
Answer: B
Explanation:
Password reconciliation can be restricted to specific days. This means that the CPM will only reconcile passwords on the days of the week specified in the RCExecutionDays parameter. The days of the week are represented by the first 3 letters of the name of the day. Sunday is represented by Sun, Mondayby Mon, etc.
NEW QUESTION # 130
Which values are acceptable in the address field of an Account?
- A. It must be NetBIOS name
- B. Any name that is resolvable on the Central Policy Manager (CPM) server is acceptable
- C. It must be a Fully Qualified Domain Name (FQDN)
- D. It must be an IP address
Answer: B
NEW QUESTION # 131
An auditor initiates a live monitoring session to PSM server to view an ongoing live session.
When the auditor's machine makes an RDP connection the PSM server, which user will be used?
- A. PSMAdminConnect
- B. Credentials stored in the Vault for the target machine
- C. PSMConnect
- D. Shadowuser
Answer: D
NEW QUESTION # 132
......
PAM-CDE-RECERT Dumps and Practice Test (208 Exam Questions): https://dumpstorrent.dumpsking.com/PAM-CDE-RECERT-testking-dumps.html
